Prisma Cloud by Palo Alto Networks and FortiWeb Web Application Firewall compete in cloud security products. Prisma Cloud appears to have the upper hand as it offers extensive features covering comprehensive cloud-native security solutions across multiple cloud environments.
Features: Prisma Cloud by Palo Alto Networks provides dynamic workload identity, cloud security posture management, and automated forensics, supporting container security and offering deep visibility into multi-cloud environments. FortiWeb focuses on web application security, providing robust traffic filtering, defense against DDoS attacks, and seamless integration with other Fortinet products.
Room for Improvement: Prisma Cloud users would benefit from better documentation, more intuitive dashboard navigation, and improved scalability. There is also a need for enhanced API security and granular access controls. FortiWeb could improve its documentation, performance, and pricing options. Users suggest adding support for zero-day attack prevention and faster signature updates.
Ease of Deployment and Customer Service: Prisma Cloud offers versatile deployment across hybrid and multi-cloud environments, with mixed reviews on technical support ranging from responsive to facing communication delays. FortiWeb provides practical customer service, but some users struggle with advanced configurations and documentation clarity.
Pricing and ROI: Prisma Cloud's extensive features justify its higher cost, using a credits-based licensing model that users feel provides significant security and compliance benefits. FortiWeb is seen as cost-effective for small to medium enterprises, offering flexible licensing options, though some users still find its costs high relative to its features.
You would only lose money if you had an attack and you need to calculate the cost against the risks.
WordPress security can be tricky, and that's where Cloudflare can be absolutely helpful for small businesses.
We have had ROI with the tool's use since it never gave us downtime and made us lose millions.
The return on value is in the securing of the applications that we are deploying, as well as through a better understanding of the types of issues in the type of environment.
Before, we had a few staff members who monitored our environment, but now the alerting and other processes happen automatically, so there is a good ROI in terms of resources.
It eliminates the need for additional hardware, making it a financially and technically sound investment.
This would help us address issues promptly, especially during unforeseen events like DDoS attacks.
We'd like a dedicated account manager.
You can get a support engineer with the best qualifications.
Whenever I have issues with the solution, I will get an immediate response from the product team and they will try to close the issue as soon as possible.
When you send them a message, you get a response in a minute or two.
They can respond with technical documentation or pass on the case to the next level because it requires the development of a new feature or changing a feature due to a bug.
It can scale approximately 10 percent, it is limited only by how much money you want to spend on the increase.
I rate the scalability of Cloudflare DNS a ten out of ten.
I would rate the solution's scalability a ten out of ten since I didn't encounter any issues with it.
It's very scalable and very easy to use.
You can use it to onboard any cloud account no matter how many resources are in it.
It's the type of tool that is constantly improving, and its scalability suits our environment well.
I rate the stability of Cloudflare DNS a ten out of ten.
For DDoS protection, I would not recommend Cloudflare.
I rate the solution’s stability an eight out of ten.
I cannot recall any downtime with the solution.
I would rate it a ten out of ten for stability.
I haven't seen any outages with Prisma Cloud.
There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features.
Despite these challenges, overall, Cloudflare remains the preferred solution compared to Azure, AWS CloudFront, and Google Cloud Armor.
Compared to other vendors and Cloudflare, there will be more downtime.
Currently, it requires programming knowledge, so if someone without hardware programming knowledge could customize certain features to their requirements, it would be very helpful.
It is a SaaS solution, but some of my clients have a local regulatory requirement, and they want to install it locally on their premises.
From a developer's perspective, especially for organizations like banks developing their applications, ensuring API security before deploying them to the cloud is crucial.
That's where Cloudflare shines for smaller businesses – it's ten times cheaper than Akamai.
The price of the solution is expensive.
When you compare Cloudflare DNS to other solutions, such as Akamai, the price is reasonable.
There are no additional costs beyond the standard fees.
A strategy to optimize costs will save you money.
The licensing model for data security should be compared to the native security offered by AWS and Azure.
The most valuable feature of Cloudflare DNS is security.
Our scenario consisted of two web servers in different allocations to control access demands, and the load balancer did the job as expected, bringing security and stability to access points.
For me, the valuable feature is DDoS protection.
Prisma Cloud is a single tool that protects cloud resources and applications without having to manage and reconcile disparate security and compliance reports.
Prisma offers visibility to developers and high-level leadership because the dashboard is excellent and the alerts are comprehensive.
This alerting system allows me to take the necessary steps to secure it before any attack can occur, making it the best preventive measure for our cloud.
Cloudflare is a highly-regarded Content Delivery Network (CDN) and a Distributed Denial-of-Service (DDoS) protection solution. The robust global connectivity cloud platform that is Cloudflare ensures users are able to connect to the Internet quickly, securely, and reliably. Cloudflare is one of the world's largest networks in the marketplace today. Using Cloudflare, businesses, educational entities, NGOs, vloggers, bloggers, and anyone else with an internet presence can experience more secure, faster websites and applications.
Currently, there are millions of Internet locations on Cloudflare, and the Cloudflare network
continues to grow every day by the thousands. The solution is able to fulfill the requests for
millions of websites seamlessly and serves on average 45 million HTTP requests per second.
Cloudflare has safe, secure data centers in close to 300 cities worldwide to ensure every
client request is filled as quickly as possible. It is Cloudflare’s edge network that makes this
possible by keeping content and other services as close to each client as possible, so the
information requests are always only seconds away.
Many organizations that work in democracy, civil society, human rights, or the arts are able to
access Cloudflare's highest levels of protection for free via Project Galileo. Additionally, official
election websites can be secured from hacking and fraud through Cloudflare’s Project
Athenian, also at no additional cost.
Cloudflare can also help organizations of all sizes develop a robust zero-trust strategy to
ensure the highest levels of productivity and profitability. Employees, stakeholders, and end users have a greater level of satisfaction and overall improved user experience, which can, in
turn, result in higher revenues and overall ROI. Zero-trust and BYOD (bring your own device)
access ensure end users and employees always have the best resources and technology
available to them at all times.
Cloudflare benefits
Cloudflare has many benefits. Some of its most valuable benefits include:
- Faster load times
- Robust DNS security
- Intuitive cloud Web Application Firewall (WAF)
- Free universal SSL
- Image enhancement
- Automatic browser caching
- Next-generation cloud load balancer
- Accelerated Mobile Pages (AMP)
- Rate limiting
- Minification
- Zero-trust capabilities
- Cost-effective
- Reduced carbon footprint
Reviews from real users
“Many websites require an SSL certificate because they sell stuff and want SSL. Cloudflare
comes with an SSL certificate built in. It's automatic. You sign yourself up for Cloudflare, and
an SSL certificate automatically protects your website. If you have a connection between your
website and your host, the server, Cloudflare, and the host, you don't necessarily need a
certificate.” Spencer M., Owner at Tech Exchange
“What I like best about Cloudflare is that my company can use it to trace and manage
applications and monitor traffic. The solution tells you if there's a spike in traffic. Cloudflare
also sends you a link to check your equipment and deployment and track it through peering,
so it's a valuable tool.” Daniel P., Network Engineer at Ufinet
“The most valuable feature of Cloudflare is the GUI. You are able to control the solution very
well through the interface. There is a lot of functionality that is embedded in the service.” PeerSpot user, Competence Center Manager at a tech services company
FortiWeb Web Application Firewall uses machine learning to reduce false positives, detects zero-day threats, and blocks DDoS attacks. It integrates with existing security infrastructure and provides SD-WAN capabilities, offering protection for websites and mobile applications.
FortiWeb WAF secures web applications with features like machine learning-based threat detection, DDoS attack mitigation, and robust integration capabilities. Additionally, it manages HTTP traffic and offers SD-WAN functionalities. Built for GDPR compliance, it supports API protection and bot mitigation while enabling secure mobile and cloud application access. Users implement it across multi-cloud environments and in data centers offering advanced security and compliance, including PCI DSS. Despite feature-rich abilities, users seek enhanced database updates, better enterprise integration, and more accessible analytics. Improvements in support response, documentation, and scalability are desired to strengthen its robust security offering.
What are the key features of FortiWeb WAF?FortiWeb WAF is widely implemented in data centers and financial industries, ensuring robust protection for web applications and sites. It supports multi-cloud environments on platforms like AWS and Azure, providing secure access while meeting compliance standards. Users benefit from enhanced application security and load balancing capabilities, making it a preferred choice in financial sectors that require VPN and SD-WAN consistency.
Prisma Cloud by Palo Alto Networks is used for managing cloud security posture, container security, and compliance monitoring in multi-cloud environments.
Prisma Cloud by Palo Alto Networks provides tools for vulnerability management, misconfiguration detection, and compliance with standards like HIPAA and CIS. It offers near real-time inventory and alerting, enhancing cloud configuration audits and security across AWS, Azure, and GCP. Its automated security features offer real-time protection and integration into CI/CD pipelines, optimizing visibility, control, and risk identification without manual steps. Despite its capabilities, improvement areas include documentation, pricing clarity, usability, security automation, dashboard customization, and API functionality. Slow support and integration challenges with AWS and third-party tools are noted.
What are the key features of Prisma Cloud?In industries such as healthcare and finance, Prisma Cloud by Palo Alto Networks enhances security by aligning with strict compliance standards and safeguarding sensitive data. Its tools adapt to rapid cloud service updates and enable secure deployment across diverse cloud infrastructures.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.